Can I encrypt secondary Storage with BitLocker & save the Recovery Key on AD like the Primary?

Hi,

I hope there isn't another post like this in this forum, I didn't find one so here I am. please direct me to it if it already exists With a solution.

In the office we have encrypted all our windows machines with bitlocker and are backing up the Recovery keys on AD (we created GPOs to enable this on the machines). Most of the PCs have a secondary HDD/SSD plugged in the SATA III port inside the System Unit (Tower). Encrypting these with bitlocker is already possible but now I need to know if there's any way I can also save these Recover Keys on AD; Ideally in the same Computer Objects that already exist.

NB: I have tried using the default wizard to save on a cloud domain storage but that did not work properly and I have no Idea where the Recovery Key was being saved, so I decrypted the test HDD again.


using Windows 10 Pro Machines
Using Windows Server 2012
 
Last edited:
Using other products, the KEY(s) belong to the USER running on PC_XYZ.

That says one key is used for all files, dirs or volumes on that system.

You should be able to prove this by experimentation.
 
Back